vendor:
Integria IMS
by:
Javier Olmedo
8.8
CVSS
HIGH
Cross-Site Scripting
79
CWE
Product Name: Integria IMS
Affected Version From: 5.0.83
Affected Version To: 5.0.84
Patch Exists: YES
Related CWE: 2018-19828
CPE: a:articast:integria_ims:5.0.83
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows, Linux
2018
Integria IMS 5.0.83 – Cross-Site Scripting
search_string parameter is vulnerable to Reflected Cross-Site Scripting (XSS) attacks through a GET request in index.php resource.
Mitigation:
Input validation and output encoding should be used to prevent XSS attacks.